Home > What is your business and what are the data risks?
FAQ:
EMAIL THIS LICENSING & REPRINTS

What is your business and what are the data risks?

25 Jul 2008 | SearchSecurityChannel.com

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   

What is your business and its data risks?

About the Author
Dr. Paul Rohmeyer is a faculty member at Stevens Institute of Technology, an independent security consultant focusing on enterprise IT risk management, and a frequent speaker at security and audit industry events. He has advised numerous financial, telecommunications and pharmaceutical companies in the development of secure network architectures.

You need to develop an understanding of the customer's business and industry to gain an appreciation of the threats, vulnerabilities and business impacts that could result from network attacks and resulting service disruptions. While some aspects of technical risk are generic and apply to all networks, there are certainly aspects of each customer's business and risk profile that you should want to learn about to customize monitoring and analysis activities to best suit the customer. For example, banks and financial services organizations will be interested in monitoring attempts to access customer information.

The description of the business and related business risks should be rich and detailed, perhaps including summarization of actual incidents faced by the customer organization, or perhaps encountered by a similar company in the industry. The customer needs to appreciate the criticality of their information to their business in their industry.

Similarly, you will need to understand the nature of the data that is on the customer's network as well as basic network flow and activity characteristics. Simply put, you need to understand the type of data that is typically on the network and also gain insight into how the customer uses their network. Customer data in regulated industries such as healthcare and other highly sensitive data should be identified. Understanding the data types and common network flow aspects are essential to establishing an analysis framework and, therefore, the management platform.

Summarize the transaction environment to highlight the data with the highest level of business significance. Talk about the use of multimedia technologies including voice over IP (VoIP) to demonstrate the variety of protocols and your customer's reliance on the network.

Return to the remote management platform FAQ guide and read the rest of Paul's expert responses.



Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Security Risk Analysis and Risk Management
How to generate revenue from unified threat management
Unified threat management: Migration and management techniques
Unified threat management: An intro for solution providers
Podcast with Dr. Paul Rohmeyer on choosing a remote management platform
Have you created a map of the to-be architecture?
How will you gather the data from the remote management platform?
Can we work with your network security management platform?
How will the new management platform affect your current security monitoring processes?
How do you plan to leverage our MSP services for monitoring and alerting?
How does the remote management platform complement your existing architecture?

Frequently asked questions
How does the remote management platform complement your existing architecture?
Can we work with your network security management platform?
How do you plan to leverage our MSP services for monitoring and alerting?
How will the new management platform affect your current security monitoring processes?

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


HomeTopicsITKnowledge ExchangeTipsMultimediaWhite PapersBlogsEvents
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2006 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts